RaqibCTI
Search the threat graph — actor, CVE, technique, victim…
⌘K
◇ SIGN IN
Analyze
/
IOC Graph
/
54[.]95[.]208[.]190
Corpus
IP
SUSPICIOUS
54[.]95[.]208[.]190
Sourced from shodan-c2
Type
ip
Risk score
3 / 3
First seen
—
Last seen
2026-09-23
Overview
Attribution
Enrichment
Pivots
Passive DNS
Historical resolution (pDNS)
No passive-DNS enrichment
Historical resolution data is pending or unavailable for this indicator.
Infrastructure fingerprint
Censys
ASN
16509 · AMAZON-02 - Amazon.com, Inc.
Open ports
80, 443
Historical hosting pivot
Validin
Co-resolved domains (7)
ns1[.]penetore[.]com, ns2[.]penetore[.]com, cc[.]penetore[.]com, mail[.]penetore[.]com, ftp[.]penetore[.]com, www[.]penetore[.]com, ec2-54-95-208-190[.]ap-northeast-1[.]compute[.]amazonaws[.]com
ThreatMiner
No ThreatMiner enrichment
Registrant / related-sample enrichment is pending for this indicator.